Re: python-werkzeug CVEs
Hello,
On Fri 29 Nov 2024 at 08:38am +01, Carsten Schoenert wrote:
> Hi Sean,
>
> Am 29.11.24 um 04:22 schrieb Sean Whitton:
>> Hello,
>> There are three DoS CVEs for python-werkzeug in stable.
>> I intend to fix these as part of the Debian LTS team, sponsored by
>> Freexian. I would like also to fix them in bookworm, because that will
>> become an LTS release eventually. Would you like me to go ahead and
>> submit a stable update request, or are you already working on something?
>
> no, I haven't looked into the details yet to fix these CVEs for the older
> versions in Debian, I was intending to look into these after the recent happen
> update of Werkzeug plus Flask *and* after my moving of home. It would take at
> least some more weeks on my sid, please go ahead and don't wait for me.
Thanks for getting back to me so quickly. I'll see how I get on.
--
Sean Whitton
Reply to: